SharePoint delays – CRL?

if your Sharepoint systems are hidden away, they may experience slowdowns due to CRL lookup. The problem is that when loading signed assemblies the .net Framework checks the Internet based Certificate Revocation List. As your servers have, like most secure environments, no outgoing connections to the public Internet, the connection to crl.microsoft.com times out. This takes far longer than you might have expected.

A quick fix / test to confirm - add this to HOSTS.

127.0.0.1 crl.microsoft.com

There are multiple "legitimate" ways to sort this out. Obviously - open a connection. Or set the registry key to kill the checking... or download the certs locally and add them. One that seems likely is for you to modify the exe.config file. Group Policy via "Certificate Path Validation Settings"is another option.

It would be nice to know how to go about doing the stuff mentioned in this blog and documenting it as part of the standard SharePoint documentation. Putting 127.0.0.1 crl.microsoft.com does not always fix the issue. I still see errors with CRL check in
the event logs.

Can you update this to provide a better step by step approach to fixing this?